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HARYANA GOVERNMENT 
ELECTRONICS & INFORMATION TECHNOLOGY DEPARTMENT 
SECRETARIAT FOR INFORMATION TECHNOLOGY 

Notification 

The 25th September, 2017 
No. Admn/315/ 1SIT /5592 . — In view of National Information Security Policy issued by the Department of 
Home Affairs , Government of India , the Governor of Haryana is pleased to constitute an Information Security 
Steering Committee (ISSC ) under the Chairmanship of Administrative Secretary to Government Haryana , Electronics 
& Information Technology , Haryana for the State . 
2. The composition of the Committee shall be as under : 
1. Administrative Secretary , Electronics & Information Technology 

Chairman 
2 . Secretary/ Special Secretary/ Jt. Secretary , IT 

Member 
(as case may be) 
Chief Information Security Officer ( CISO ) 

Member 
Finance Advisor 

Member 
Representative of NCIIPC 

Member 
State Informatics Officer, NIC -HSU 

Special Invitee . 
Head SeMT 

Special Invitee. 
8 . Representative of CERT -In 

Special Invitee. 
Note: The committee , with the permission of the Chairman may co -opt. or invite such other person (s ) as it deemed 

appropriate to participate in anymeeting as special invitee (s ). 
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3 . 


Pol. 


Roles and Responsibilities of the Committee: 
1 . Network change management: Significant changes to network configuration must be approved by the 

ISSC . 
2 . Application change control: Each significant change in application must be approved by the ISSC . 

Communication of incidents: The organization must ensure that timely communication is done to 
report the specific incidents to relevant stakeholders such as the Information Security Steering 
Committee (ISSC ), Sectorial CERT teams and CERT – In - etc . (NCIIPC for CII) . 
Management reporting and actions : Personnel associated with security audit should analyse auditing 
results to reflect current security status, severity level of the vulnerabilities or anomalies present after 
removing false - positive and report it to the concerned departments of the organization for remediation . 
The results of all security audits must be shared with ISSC and senior management. 


Chandigarh : 
The 30th August, 2017 . 


DEVENDER SINGH , 
Principal Secretary to Government Haryana, 
Electronics & Information Technology Department. 


55639 — C .S . - H .G . P ., Chd . 


